Privacy Policy
Effective Date: March 16, 2026
Zollback, Inc. ("Zollback," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website at www.zollback.com, platform, and related services (collectively, the "Service").
By using the Service, you consent to the practices described in this Privacy Policy.
1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, company name, phone number, and job title when you create an account or request an assessment.
- Trade Data: Import entry summaries, commercial invoices, bills of lading, export documentation, and other trade-related documents you upload for duty drawback processing.
- Contact Form Submissions: Name, email, company, and message content when you contact us through our website.
- Payment Information: Billing details processed through our third-party payment processor. We do not store full credit card numbers on our servers.
1.2 Information Collected Automatically
- Usage Data: Pages visited, features used, time spent on the Service, referring URLs, and interaction patterns.
- Device Information: Browser type, operating system, device type, IP address, and general location (city/region level).
- Cookies and Similar Technologies: We use cookies and similar tracking technologies to maintain sessions, remember preferences, and analyze usage. See Section 6 for details.
1.3 Information from Third Parties
We may receive information from third-party services you connect to your account (e.g., ERP systems, customs management software) solely for the purpose of processing your duty drawback claims.
2. How We Use Your Information
We use the information we collect to:
- Provide the Service: Process your trade data, calculate drawback claims, file claims with CBP, and deliver refund results.
- Communicate with You: Send account notifications, eligibility assessments, claim status updates, and respond to inquiries.
- Improve the Service: Analyze usage patterns, diagnose technical issues, and develop new features.
- Ensure Security: Detect and prevent fraud, unauthorized access, and other security threats.
- Comply with Legal Obligations: Meet regulatory requirements, respond to lawful requests, and enforce our Terms of Service.
We do not sell your personal information to third parties.
3. How We Share Your Information
We may share your information only in the following circumstances:
- Service Providers: With trusted third-party vendors who assist us in operating the Service (e.g., cloud hosting, payment processing, email delivery). These providers are contractually obligated to protect your data and use it only for the services they provide to us.
- U.S. Customs and Border Protection: Trade data included in duty drawback claims filed on your behalf with CBP, as required for claim processing.
- Legal Requirements: When required by law, regulation, legal process, or governmental request.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction. We will notify you of any such change.
- With Your Consent: When you explicitly authorize us to share your information.
4. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. Specifically:
- Account and trade data: Retained for the duration of your account plus 7 years, consistent with CBP record-keeping requirements for duty drawback claims (19 CFR § 190.10).
- Contact form submissions: Retained for up to 2 years.
- Usage and analytics data: Retained in aggregated, anonymized form indefinitely.
You may request deletion of your data at any time by contacting us (see Section 10). Certain data may be retained as required by law.
5. Data Security
We implement industry-standard security measures to protect your information:
- Encryption: All data is encrypted in transit (TLS 1.2+) and at rest (AES-256).
- Access Controls: Role-based access controls limit data access to authorized personnel only.
- Audit Logging: Comprehensive audit logs track all access to sensitive data.
- Certifications: Zollback is SOC 2 Type 1 certified, with regular third-party security audits.
- Infrastructure: Our systems are hosted on secure, enterprise-grade cloud infrastructure with redundancy and disaster recovery.
No method of transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
6. Cookies and Tracking Technologies
We use cookies and similar technologies for:
- Essential Cookies: Required for the Service to function (e.g., authentication, session management).
- Analytics Cookies: Help us understand how visitors use our website so we can improve it.
You can control cookies through your browser settings. Disabling essential cookies may impair Service functionality.
7. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request correction of inaccurate or incomplete information.
- Deletion: Request deletion of your personal information, subject to legal retention requirements.
- Portability: Request your data in a structured, machine-readable format.
- Opt-Out: Opt out of non-essential communications at any time.
To exercise any of these rights, contact us at privacy@zollback.com.
8. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- The right to know what personal information we collect, use, and disclose.
- The right to request deletion of your personal information.
- The right to opt out of the sale of personal information. We do not sell personal information.
- The right to non-discrimination for exercising your privacy rights.
To submit a CCPA request, contact us at privacy@zollback.com.
9. Children's Privacy
The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected information from a child under 18, we will take steps to delete it promptly.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on our website and updating the "Effective Date" above. Your continued use of the Service after changes become effective constitutes acceptance of the revised policy.
11. Contact Us
If you have questions or concerns about this Privacy Policy, contact us at:
Zollback, Inc. Email: privacy@zollback.com Website: www.zollback.com
